IT
58.306 CVE tracked
790 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2024-21606 HIGH 7.5 juniper junos A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). In a remote access VPN scenario, if a "tcp-encap-profile" is con 0.6% —
CVE-2024-21604 HIGH 7.5 juniper junos_os_evolved An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a high rate of specific valid packets are proces 0.5% —
CVE-2024-21602 HIGH 7.5 juniper junos_os_evolved A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024, ACX7100-32C and ACX7100-48L allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a specific IPv4 UDP packet is received and sent to 0.5% —
CVE-2024-21598 HIGH 7.5 juniper junos An Improper Validation of Syntactic Correctness of Input vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). If a BGP update 0.6% —
CVE-2024-21595 HIGH 7.5 juniper junos An Improper Validation of Syntactic Correctness of Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). If an attacker sends high rate of s 0.5% —
CVE-2024-21586 HIGH 7.5 juniper junos An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX Series and NFX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). If an a 0.5% —
CVE-2024-21438 HIGH 7.5 microsoft windows_10_1507 Microsoft AllJoyn API Denial of Service Vulnerability 2.7% —
CVE-2024-21427 HIGH 7.5 microsoft windows_server_2012 Windows Kerberos Security Feature Bypass Vulnerability 1.5% —
CVE-2024-21421 HIGH 7.5 microsoft azure_software_development_kit Azure SDK Spoofing Vulnerability 1.8% —
CVE-2024-21406 HIGH 7.5 microsoft windows_10_1607 Windows Printing Service Spoofing Vulnerability 0.9% —
CVE-2024-21404 HIGH 7.5 microsoft asp.net_core .NET Denial of Service Vulnerability 2.7% —
CVE-2024-21392 HIGH 7.5 microsoft .net .NET and Visual Studio Denial of Service Vulnerability 3.1% —
CVE-2024-21386 HIGH 7.5 microsoft asp.net_core .NET Denial of Service Vulnerability 2.4% —
CVE-2024-21348 HIGH 7.5 microsoft windows_10_1507 Internet Connection Sharing (ICS) Denial of Service Vulnerability 2.2% —
CVE-2024-21347 HIGH 7.5 microsoft windows_10_1507 Microsoft ODBC Driver Remote Code Execution Vulnerability 1.4% —
CVE-2024-21342 HIGH 7.5 microsoft windows_11_22h2 Windows DNS Client Denial of Service Vulnerability 2.5% —
CVE-2024-21312 HIGH 7.5 microsoft .net_framework .NET Framework Denial of Service Vulnerability 3.6% —
CVE-2024-21307 HIGH 7.5 microsoft windows_10_1507 Remote Desktop Client Remote Code Execution Vulnerability 2.0% —
CVE-2024-20700 HIGH 7.5 microsoft windows_10_1809 Windows Hyper-V Remote Code Execution Vulnerability 4.0% —
CVE-2024-20687 HIGH 7.5 microsoft windows_10_1507 Microsoft AllJoyn API Denial of Service Vulnerability 2.5% —
CVE-2024-20672 HIGH 7.5 microsoft .net .NET Denial of Service Vulnerability 2.9% —
CVE-2024-20667 HIGH 7.5 microsoft azure_devops_server Azure DevOps Server Remote Code Execution Vulnerability 1.4% —
CVE-2024-20661 HIGH 7.5 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability 2.8% —
CVE-2024-20484 HIGH 7.5 cisco enterprise_chat_and_email A vulnerability in the External Agent Assignment Service (EAAS) feature of Cisco Enterprise Chat and Email (ECE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to 0.6% —
CVE-2024-20451 HIGH 7.5 cisco spa_301_firmware Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly. 0.8% —